Technical Information
- '' (downloaded from the Internet)
- %APPDATA%\Shell\dllcall.exe
- %APPDATA%\Shell\windata.exe
- %APPDATA%\check.txt
- %APPDATA%\Shell\winhost.exe
- <Full path to file>
- 'ad####k.akkels.ru':80
- 'ec####og.ucoz.ru':80
- http://ad####k.akkels.ru/11.exe
- http://ad####k.akkels.ru/10.exe
- http://ec####og.ucoz.ru/
- http://ad####k.akkels.ru/3.exe
- DNS ASK ad####k.akkels.ru
- DNS ASK ec####og.ucoz.ru
- ClassName: 'AutoHotkey' WindowName: '<Full path to file>'
- '%APPDATA%\Shell\windata.exe'
- '%APPDATA%\Shell\dllcall.exe'
- '%APPDATA%\Shell\winhost.exe'